March 12, 2024
CyberSec Roundup
A synopsis of the Latest Cybersecurity News
Roku Confirms Breach
Roku confirmed it suffered a cyberattack that exposed the accounts of over 15,000 customers. This was a credential stuffing attack, where customers used the same passwords for multiple services, and credentials from another breach were used to access the Roku accounts. Roku’s team noticed the illicit activity and are securing the affected accounts, as the threat actors are attempting to resell the accounts on the dark web for 50 cents each.
BlackCat Scams Partner
The BlackCat ransomware group and one of its affiliates attacked Optum, a UnitedHealth Group subsidiary, and received a $22 million ransom payment for their efforts. Blackcat, as the operator, was to distribute a share of the illicit funds to its affiliate but did not, claiming that law enforcement had shut down its operation. However, law enforcement agencies have not claimed any crackdown on BlackCat, so it appears they left their affiliate in the cold and took all the money for themselves.
Equilend Breach
Equilend was hit by a ransomware attack in January and Lockbit claimed to be behind the attack. The New York-based securities lending platform recently confirmed the attack on its employees, informing them that their personal information was exposed during the attack and will offer employees two years of free identity theft protection services as a result.
By: David Pinder
IT & Cybersecurity Consultant
Certified Ethical Hacker (Master) | CCSK | AZ-500